AuthorTopic: How or Where to tell? (Read 2945 times)

I noticed on my webserver access for URLs that do not exist any more - I had my own CA - how or where can I contact the person that he/she should delete the root certificate he/she installed from my old web site?

You're asking the wrong question. The real question should probably be: Why doesn't this person understand that a 404 means that the resource isn't there, and why they don't get the clue to give up on it....?

Who really cares if they continue to hold a defunct certificate?

There is a way to create a certificate revocation list (to revoke unexpired certificates, including CA certificates). However, the details of this construct is beyond my knowledge. Maybe that's what you need to do if you really care to....

Not really, I'd just want to tell the guy, which is behind this HE-IPv6-Tunnel to remove the certificates, because these were onewhich I created at the early steps of creating my own CA, and how did they get there?

I think the problem may be more complicated than you think. If person B got one of your certificates, and person C is talking to person B's machine, you could be seeing verification attempts from C when B is where the issue is at. In any case, the following might give you a starting point:

Alternatively, you could try firewall blocking his address. Or, more likely to get a reaction, putting a rate limiter on the request. A one byte per 10 second limit might slow some application he's running down enough that he notices it.